CVE-2025-6188: On affected platforms running Arista EOS, maliciously formed UDP packets with source port 3503 may be accepted by EOS. UDP Port 3503 is associated with LspPing Echo Reply. This can result in unexpected behaviors, especially for UDP based services that do n
On affected platforms running Arista EOS, maliciously formed UDP packets with source port 3503 may be accepted by EOS. UDP Port 3503 is associated with LspPing Echo Reply. This can result in unexpected behaviors, especially for UDP based services that do not perform some form of authentication.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6188?
CVE-2025-6188 is classified as a moderate-severity vulnerability due to its potential impact on UDP-based services.
How do I fix CVE-2025-6188?
To mitigate CVE-2025-6188, users should update their Arista EOS to the latest version that addresses this vulnerability.
What platforms are affected by CVE-2025-6188?
CVE-2025-6188 affects platforms running Arista EOS software.
What types of attacks can be conducted using CVE-2025-6188?
CVE-2025-6188 can allow attackers to send maliciously formed UDP packets, potentially causing unexpected behaviors in vulnerable services.
Is authentication required to exploit CVE-2025-6188?
No, CVE-2025-6188 can be exploited by using unauthorized UDP packets which do not require authentication.